CVE: CVE-2008-6123

Export to Word

The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when using TCP wrappers for client authorization, does not properly parse hosts.allow rules, which allows remote attackers to bypass intended access restrictions and execute SNMP queries, related to "source/destination IP address confusion."

Threat-Mapped Scoring

Score: 1.8

Priority: P4 - Informational (Low)

EPSS

Score: 0.00627
Percentile: 0.69285

CVSS Scoring

CVSS v2 Score: 5.0

Severity:

Mapped CWE(s)

Affected Products

← Back to Home